Firefox-selaimen lisäosat
Kirjaudu sisään
Lisäosan kuvake

Lisäosan APIlot versiohistoria - 7 versiota

APIlot tekijä Mohamed Zumair

Ei vielä arvioita
0/5 tähteä
5
0
4
0
3
0
2
0
1
0
Lisäosan APIlot versiohistoria - 7 versiota
  • Ole varovainen vanhojen versioiden kanssa! Ne näytetään vain testauksen ja viittausten vuoksi.On suositeltavaa käyttää aina lisäosan uusinta versiota.

  • Uusin versio

    Versio 2.3.2

    Julkaistu 17. syys 2026 - 360,76 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat, android 120.0 ja uudemmat
    • Redirect proxy confused deputy (SSRF) — The content script relayed any page-posted PROXY_REDIRECT_REQUEST window.postMessage straight into a background fetch that runs with <all_urls> host permission (bypassing CORS), using the page-supplied URL/method/headers/body verbatim and without checking that monitoring was even enabled. Since the content script listens on the page's own window, any website could post that message itself and use the extension to fetch and read back arbitrary cross-origin responses. The content script now computes the redirect target itself from a real, rule-matched request and only proxies to that extension-computed URL, gated on monitoring being enabled and a short-lived, one-shot match — the page's claimed URL is no longer trusted. Reported by Shubham Agarwal (MPI-SP / Saarland University).
    • HAR import — Monitor tab can now import a HAR 1.2 document (from DevTools, other tools, or our own export) back into the request log, complementing the existing HAR export.
    • Panel UI refresh — New icon set, new CSS theme tokens, and a restyle of panel chrome (header, tab bar, toolbars, segmented controls, cards) across Monitor, Rules, Schema Explorer, Query Builder, and Settings.

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa Firefox ja hanki laajennus
    Lataa tiedosto
  • Vanhemmat versiot

    Versio 2.3.1

    Julkaistu 10. huhti 2026 - 386,34 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat
    Security
    • Content Security Policy — Added CSP settings in wxt.config.ts to harden the extension against script injection.
    • postMessage origin — Updated window.postMessage calls across content and injected scripts to use window.location.origin instead of '*'.
    • Redirect URL validation — Added isAllowedRedirectUrl to restrict redirect rule targets to http/https schemes only.
    • Rule validation — APITestingCore now enforces allowed actions and validates redirect URL format on rule save, with improved error feedback.

    Fixed
    • Log profile — Verbosity setting now correctly gates background console output. minimal suppresses all [CORE] debug logs; basic shows standard request/response summaries; detailed adds low-level noise such as dedup buffer removals. Request entries in the panel are always fully captured regardless of profile.
    • Theme — first install — Default theme changed from light to system so the panel respects the OS dark/light preference immediately on first install without requiring a visit to Settings.
    • Theme — system mode — Panel now listens for OS theme changes at runtime and updates live when the system preference changes while the system theme is active.

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa tiedosto
  • Versio 2.3.0

    Julkaistu 9. huhti 2026 - 385,94 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat
    • Implement UX design and a11y ESLint configuration and update dependencies for improved code quality
    • Refactor rule deletion handling and improve rule name setup

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa tiedosto
  • Versio 2.2.1

    Julkaistu 9. huhti 2026 - 383,25 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat
    • Fix rule deletion handling and improve rule name setup

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa tiedosto
  • Versio 2.2.0

    Julkaistu 9. huhti 2026 - 381,55 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat
    • Add filter functionality to AnalyticsDashboard for enhanced data analysis
    • Enhance messaging capabilities across frames in background scripts & fix deduplicate gql entries on webrequests
    • Enhance GraphQL request handling in APITestingCore

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa tiedosto
  • Versio 2.1.0

    Julkaistu 8. huhti 2026 - 380,88 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat
    • Migration to WXT + React 18 + TypeScript + Tailwind CSS v4 + shadcn/ui + Zustand
    • Enhance API monitoring and UI features
    • Added support for Accumulated performance metrics (page profiling)
    • Enhance GraphQL request handling in APITestingCore

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa tiedosto
  • Versio 2.0.0

    Julkaistu 27. helmi 2026 - 409,06 kt
    Yhteensopivuus: firefox 58.0 ja uudemmat

    Lähdekoodi julkaistu lisenssillä MIT-lisenssi

    Lataa tiedosto
Siirry Mozillan verkkosivustolle

Lisäosat

  • Tietoja
  • Firefox-lisäosien blogi
  • Laajennustyöpaja
  • Kehityskeskus
  • Kehittäjäkäytännöt
  • Yhteisön blogi
  • Keskustelualue
  • Ilmoita ongelmasta
  • Opas arviointiin

Download

  • Download Firefox
  • Windows
  • macOS
  • iOS
  • Android
  • Linux
  • All

Latest Builds

  • Nightly
  • Beta

Firefox for Business

  • Enterprise

Yhteisö

  • Connect
  • Contribute
  • Developer

Seuraa

  • Instagram
  • YouTube
  • TikTok
  • Bluesky
  • Podcast
  • Tietosuoja
  • Evästeet
  • Juridiset asiat

Jos ei erikseen mainita, tämän sivuston sisällön kattaa lisenssi Creative Commons Attribution Share-Alike License v3.0 tai mikä tahansa uudempi versio.